Skip to content

Security: ichenh/zerotick

Security

SECURITY.md

Security Policy / 安全策略

Supported versions / 支持版本

ZeroTick is under active development. Security fixes target the latest release only.

ZeroTick 正在持续开发中,安全修复仅面向最新发布版本。

Reporting a vulnerability / 报告安全漏洞

Do not disclose suspected vulnerabilities in public Issues. Use GitHub's private vulnerability reporting and include:

  • the affected ZeroTick and Windows versions;
  • reproduction steps and the expected security impact;
  • sanitized logs or a minimal proof of concept;
  • whether the issue requires administrator privileges or a specific device state.

请勿在公开 Issue 中披露疑似漏洞。请通过 GitHub 的私密漏洞报告提交,并说明:

  • 受影响的 ZeroTick 与 Windows 版本;
  • 复现步骤及预期安全影响;
  • 已脱敏的日志或最小概念验证;
  • 问题是否需要管理员权限或特定设备状态。

Do not include credentials, personal paths, device instance IDs, or unrelated personal data. The maintainer will acknowledge a valid report as soon as practical and coordinate disclosure after a fix is available.

请勿包含凭据、个人路径、设备实例 ID 或无关个人数据。维护者会尽快确认有效报告,并在修复可用后协调披露。

There aren't any published security advisories